CVE-2021-36192
Severity
3.8LOW
EPSS
0.1%
top 83.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 3
Latest updateMay 24
Description
An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in FortiManager 7.0.1 and below, 6.4.6 and below, 6.2.x, 6.0.x, 5.6.0 may allow a FortiGate user to see scripts from other ADOMS.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:NExploitability: 2.0 | Impact: 2.7
Affected Packages2 packages
▶CVEListV5fortinet/fortinet_fortimanagerFortiManager 7.0.1 and below, 6.4.6 and below, 6.2.x, 6.0.x, 5.6.0
🔴Vulnerability Details
2📋Vendor Advisories
1Fortinet▶
An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in FortiManager 7.0.1 and below, 6...↗2021-11-03